[kernel-sec-discuss] r3420 - active

Ben Hutchings benh at moszumanska.debian.org
Mon Jun 30 13:00:34 UTC 2014


Author: benh
Date: 2014-06-30 13:00:33 +0000 (Mon, 30 Jun 2014)
New Revision: 3420

Modified:
   active/CVE-2014-4014
Log:
Mark CVE-2014-4014 as not relevant to versions before 3.5

Modified: active/CVE-2014-4014
===================================================================
--- active/CVE-2014-4014	2014-06-30 13:00:09 UTC (rev 3419)
+++ active/CVE-2014-4014	2014-06-30 13:00:33 UTC (rev 3420)
@@ -1,11 +1,11 @@
 Description: Linux kernel user namespace bug
 References:
+ http://www.openwall.com/lists/oss-security/2014/06/10/4
 Notes:
- http://www.openwall.com/lists/oss-security/2014/06/10/4
 Bugs:
 upstream: released (3.16-rc1) [23adbe12ef7d3d4195e80800ab36b37bee28cd03]
-2.6.32-upstream-stable:
+2.6.32-upstream-stable: N/A "user namespaces known broken before 3.5"
 sid: released (3.14.7-1) [bugfix/all/fs-userns-change-inode_capable-to-capable_wrt_inode_uidgid.patch]
-3.2-wheezy-security:
-2.6.32-squeeze-security:
-3.2-upstream-stable:
+3.2-wheezy-security: N/A "user namespaces known broken before 3.5"
+2.6.32-squeeze-security: N/A "user namespaces known broken before 3.5"
+3.2-upstream-stable: N/A "user namespaces known broken before 3.5"




More information about the kernel-sec-discuss mailing list